CloudFront alias in Route 53 private hosted zone

0

The Route 53 documentation says things like:

You can't create a resource record set in a private hosted zone to route traffic to a CloudFront distribution.

And:

Alias resource record sets for CloudFront can't be created in a private zone.

But they can! Try it. It works. (If the Route 53 console doesn't suggest the alias target, you can still write it yourself.)

It makes sense if, for example, you're using a split zone setup.

Is the documentation mistaken, or is this not intended or guaranteed to work?

(My private hosted zone is in us-east-2.)

已提問 10 個月前檢視次數 577 次
1 個回答
1

As this is DNS related and without testing myself, technically what you say is most likely true.

Cloudfront usually is publicly facing but technically you could create a private record to resolve to a cloudfront resource.

I guess if you have a split horizon DNS you would have to create a record in the private zone if resources need to resolve it.

profile picture
專家
已回答 10 個月前

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南